Commit Graph

11981 Commits

Author SHA1 Message Date
Robin Ward
f5e0cf63f6 SECURITY: The SSO return_path was an open redirect
This security fix needs SSO to be configured, and the user has to go
through the entire auth process before being redirected to the wrong host so
it is probably lower priority for most installs.
2015-01-22 12:33:07 -05:00
Robin Ward
f7f2e83cfb SECURITY: Don't whitelist codepen as it is a potential vector for abuse 2015-01-21 14:02:22 -05:00
Neil Lalonde
603108cd54 Version bump to v1.1.3 2014-12-12 14:37:30 -05:00
Régis Hanol
0138ecc99a SECURITY: prevent direct download of backups 2014-12-03 13:02:42 +01:00
Neil Lalonde
89f5ea02f6 Version bump to v1.1.2 2014-11-21 11:26:26 -05:00
Sam
abff1e88d4 FIX: PM title not editable 2014-11-21 11:09:35 +11:00
Régis Hanol
e0a4a7a9cd FEATURE: don't limit registration from an IP address if a staff member has that IP address 2014-11-21 00:34:31 +01:00
Jeff Atwood
4d1ac30233 fix pop up composer tips display for mobile 2014-11-21 00:34:24 +01:00
Neil Lalonde
6e0152ab94 Version bump to v1.1.1 2014-11-18 15:57:50 -05:00
Robin Ward
d912cf727f Merge pull request #2980 from eriko/patch-1
set indent_style to valid value
2014-11-18 15:00:05 -05:00
Erik Ordway
e8ee08d159 set indent_style to valid value
Per the documentation for editorconfig the two valid values for ```indent_style```  are 'tab' or 'space'
2014-11-18 11:37:39 -08:00
Jeff Atwood
27801287ac add TL2 note to max new accounts per reg ip 2014-11-18 03:59:27 -08:00
Régis Hanol
9c1341b554 FIX: limit the number of group members returned for automatic groups 2014-11-18 12:13:45 +01:00
Régis Hanol
f18d30f1d7 FIX: don't limit the number of group members returned to the front-end (UI needs some work for large groups) 2014-11-18 12:09:37 +01:00
Jeff Atwood
82be9d3445 setting this to 200 was not a good idea 2014-11-18 03:04:59 -08:00
Sam
b4844d4477 FIX: correct old username index
(in some cases search was not finding accounts)
2014-11-18 14:32:23 +11:00
Robin Ward
f73aa444ee FIX: GroupedView bug with latest Ember build 2014-11-17 20:26:21 -05:00
Sam
e668d770ac FEATURE: remove english korean slugs 2014-11-18 11:52:10 +11:00
Sam
4ff056231d FIX: expanding replies not working correctly 2014-11-18 11:52:10 +11:00
Jeff Atwood
601a13acef increase new user query to 200 results 2014-11-17 16:45:33 -08:00
Jeff Atwood
75b5b27f78 we don't need this /popular redirect any more 2014-11-17 16:40:23 -08:00
Sam
0faab6d54a update rails master 2014-11-18 10:12:36 +11:00
Sam
a7713ecfc1 expire banner cache when excerpt is updated 2014-11-18 09:21:18 +11:00
Régis Hanol
672cd92638 FIX: damn timezones 2014-11-17 22:53:41 +01:00
Robin Ward
0b0cee4e07 Merge pull request #2969 from cpradio/pr-add-category-to-group-posts
FEATURE: Add category to Group Post Listing
2014-11-17 16:02:15 -05:00
cpradio
cca78f1031 Remove n+1 query on Categories 2014-11-17 15:43:22 -05:00
Robin Ward
72cd2f284b FIX: Try a different way of removing use strict from Ember 1.7.1 2014-11-17 15:31:30 -05:00
Robin Ward
7b7567f8e6 FIX: Remove use strict from ember build to get around iOS bugs 2014-11-17 14:42:21 -05:00
Régis Hanol
d702c31520 Merge pull request #2976 from davidgnavas/patch-1
little typo
2014-11-17 19:29:04 +01:00
David García-Navas López de Cuéllar
fd0ba997d0 little typo 2014-11-17 19:01:08 +01:00
Robin Ward
5e62461f5a Merge pull request #2975 from techAPJ/patch-3
Update Translations
2014-11-17 12:34:40 -05:00
Robin Ward
cc097a3baa SECURITY: Update Rails to 4.1.8 2014-11-17 12:21:00 -05:00
Régis Hanol
15a5d06495 use proper case & remove unused view 2014-11-17 18:17:24 +01:00
Arpit Jalan
dbd5823881 Update Translations 2014-11-17 21:35:06 +05:30
Régis Hanol
216a5a87cb FIX: do not display EPOCH 2014-11-17 16:32:14 +01:00
Régis Hanol
7bb9a839e5 fix the build (again) 2014-11-17 16:06:43 +01:00
Régis Hanol
dd9c475ea0 FIX: changing category within edit grace period as TL3 pops up an error 2014-11-17 15:57:45 +01:00
Régis Hanol
a06bf0b7be fix the build 2014-11-17 15:47:07 +01:00
Régis Hanol
5edcb77f26 Merge pull request #2972 from intelliot/patch-1
fix minor typo
2014-11-17 15:06:07 +01:00
Régis Hanol
dbb4491bc3 Merge pull request #2973 from lidel/openstreetmap-support
UX: whitelist OpenStreetMap iframes
2014-11-17 15:04:58 +01:00
Régis Hanol
c5f9dd4ef3 FEATURE: only limit new registrations from that IP if all the users from that IP are TL1 or TL0 2014-11-17 15:02:10 +01:00
Régis Hanol
fae19aa56c FEATURE: improve admin IP lookup dialog (add username/trust level/read time/topics entered) 2014-11-17 14:51:28 +01:00
Marcin Rataj
9dccd975d9 UX: whitelist OpenStreetMap iframes 2014-11-17 14:30:25 +01:00
Régis Hanol
7641d88224 FEATURE: new 'maximum new user accounts per registration IP' site setting 2014-11-17 12:04:29 +01:00
Jeff Atwood
78f6cea16c bump up header icon size a bit 2014-11-17 02:21:30 -08:00
Jeff Atwood
e3ff168e42 specify max-width 100% on digest email logos 2014-11-17 02:10:33 -08:00
Jeff Atwood
750189818e Omit Needless Words 2014-11-16 23:49:16 -08:00
Elliot Lee
3e4beeee32 fix minor typo 2014-11-16 23:17:15 -08:00
Sam
8881e56df5 PERF: don't ever use inject on AR relations
inject will deteriorate to a method missing that
invokes arel and a world of uneeded work
2014-11-17 18:03:11 +11:00
Sam
85e5e912b2 be explicit about log level 2014-11-17 18:03:11 +11:00